Skip to content

farSec/web-security-portfolio

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

3 Commits
 
 

Repository files navigation

Web Security Portfolio

This repository contains my practical web application security learning portfolio, focused on manual testing methodology, OWASP Top 10 vulnerabilities, authentication flaws, access control issues, API testing, and professional reporting.

Portfolio Sections

Section Description
Sample Reports Professional-style vulnerability reports
Methodology My web application testing workflow
Checklists Auth, access control, input validation, API testing
Labs & Writeups Retired lab writeups and lessons learned
Tools Small scripts created to support testing

Core Methodology

  1. Scope review
  2. Application mapping
  3. Authentication testing
  4. Authorization and access control testing
  5. Input validation testing
  6. Business logic review
  7. Evidence collection
  8. Risk rating
  9. Remediation guidance
  10. Retesting notes

Skills Demonstrated

  • Manual Web Application Testing
  • OWASP Top 10
  • Burp Suite Workflow
  • Authentication & Authorization Testing
  • Vulnerability Documentation
  • Technical Report Writing

About

A practical web application security portfolio focused on OWASP Top 10, API testing, access control, methodology, and reporting.

Topics

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors